HackingStolen CredentialsCapture Stored DataData ExfiltratedCustomer Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTMediumContained
The CCIM Institute
bd_32e0da482b2a4a09 · schema v1 · pii pii-v1
Full breach record for The CCIM Institute →The CCIM Institute notified New Hampshire AG of a data breach where an unknown actor accessed and copied files between July 12-13, 2024. Suspicious activity was identified on July 15, 2024. Personal information, including government IDs, was accessed. The Institute secured systems, investigated, and offered credit monitoring services to affected individuals.
This filing is one of 3 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (2) · sorted by filing gap
- bd_da3b0c62a4cd5246Indiana State AGfiled 2025-01-24Candidate
- bd_ea4c8e5ac5ff7440Maine State AGfiled 2025-01-24Verified
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/ccim-institute-20250124.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Jan 24, 2025
- Raw hash
- 4aaffb22284ef5bed743412d853c54bc0d8a3d368276343ba0493690586170cd
Reporting entity
- Name
- The CCIM Institutenorm: the ccim institute
- Domain
- ccim.com
Victim entity
- Name
- The CCIM Institutenorm: the ccim institute
- Domain
- ccim.com
Incident
- Discovered
- Jul 15, 2024
- Materiality determined
- —
- Notification sent
- Jan 24, 2025
- Affected individuals
- Not disclosed
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid AccountsT1119 Automated Collection
- Threat actor
- ExternalFinancial
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 28 weeks(193 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.